summaryrefslogtreecommitdiffstats
path: root/playbooks/common
Commit message (Collapse)AuthorAgeFilesLines
* Get router/registry certs. Collect common names and subjectAltNamesTim Bielawa2016-10-201-26/+40
|
* Support etcd certs now. Fix lint. Generate HTML report.Tim Bielawa2016-10-202-1/+118
|
* Try to make boiler plate for cert expiry checkingTim Bielawa2016-10-201-0/+37
|
* Merge pull request #2621 from dgoodwin/symlink-fixScott Dodson2016-10-194-14/+10
|\ | | | | Switch from "oadm" to "oc adm" and fix bug in binary sync.
| * Switch from "oadm" to "oc adm" and fix bug in binary sync.Devan Goodwin2016-10-194-14/+10
| | | | | | | | | | | | | | | | Found bug syncing binaries to containerized hosts where if a symlink was pre-existing, but pointing to the wrong destination, it would not be corrected. Switched to using oc adm instead of oadm.
* | [logging] Fix NFS volume bindingScott Dodson2016-10-171-6/+6
| |
* | Merge pull request #2608 from abutcher/template-with-itemsScott Dodson2016-10-178-8/+8
|\ \ | |/ |/| Template with_items for upstream ansible-2.2 compat.
| * Template with_items for upstream ansible-2.2 compat.Andrew Butcher2016-10-148-8/+8
| |
* | Merge pull request #2605 from sdodson/loggingScott Dodson2016-10-141-6/+6
|\ \ | |/ |/| [logging] Use inventory variables rather than facts
| * Use inventory variables rather than factsScott Dodson2016-10-141-6/+6
| |
* | Resume restarting node after upgrading node rpms.Devan Goodwin2016-10-141-0/+4
| | | | | | | | | | | | | | Error in commit 245fef16573757b6e691c448075d8564f5d569f4. As it turns out this is the only place a rpm based node can be restarted in upgrade. Restoring the restart but making it conditional to avoid the two issues reported with out of sync node restarts.
* | upgrade: Don't check avail docker version if not already installed.Devan Goodwin2016-10-141-2/+4
| |
* | Merge pull request #2598 from detiber/2547Scott Dodson2016-10-131-2/+2
|\ \ | |/ |/| update handling of use_dnsmasq
| * update handling of use_dnsmasqJason DeTiberus2016-10-131-2/+2
| |
* | Stop restarting node after upgrading master rpms.Devan Goodwin2016-10-121-3/+0
|/ | | | | | | | | | This looks to be causing a customer issue where some HA upgrades fail, due to a missing EgressNetworkPolicy API. We update master rpms, we don't restart services yet, but then restart node service which tries to talk to an API that does not yet exist. (pending restart) Restarting node here is very out of place and appears to not be required.
* Set master facts for first master in node scaleup.Andrew Butcher2016-10-051-0/+11
|
* Fix default port typo.Andrew Butcher2016-10-051-2/+2
|
* Merge pull request #2511 from vishpat/nuage_haAndrew Butcher2016-10-041-0/+11
|\ | | | | Changes for Nuage HA
| * Filterize haproxy frontends/backends and add method for providing additional ↵Andrew Butcher2016-10-031-0/+11
| | | | | | | | frontends/backends.
* | Merge pull request #2441 from dgoodwin/34-upgrade-improvementsAndrew Butcher2016-10-0417-408/+447
|\ \ | | | | | | 3.4 Upgrade Improvements
| * | Fix bug with service signer cert on upgrade.Devan Goodwin2016-09-292-1/+7
| | | | | | | | | | | | | | | | | | It is invalid Ansible to use a when on an include that contains plays, as it cannot be applied to plays. Issue filed upstream for a better error, or to get it working.
| * | Use pre_upgrade tag instread of a dry run variable.Devan Goodwin2016-09-291-1/+1
| | |
| * | Move etcd backup from pre-upgrade to upgrade itself.Devan Goodwin2016-09-292-87/+86
| | |
| * | Allow a couple retries when unscheduling/rescheduling nodes in upgrade.Devan Goodwin2016-09-291-0/+12
| | | | | | | | | | | | | | | | | | | | | | | | This can fail with a transient "object has been modified" error asking you to re-try your changes on the latest version of the object. Allow up to three retries to see if we can get the change to take effect.
| * | Skip the docker role in early upgrade stages.Devan Goodwin2016-09-292-5/+6
| | | | | | | | | | | | | | | | | | | | | | | | This improves the situation further and prevents configuration changes from accidentally triggering docker restarts, before we've evacuated nodes. Now in two places, we skip the role entirely, instead of previous implementation which only skipped upgrading the installed version. (which did not catch config issues)
| * | Allow filtering nodes to upgrade by label.Devan Goodwin2016-09-297-13/+55
| | |
| * | Allow customizing node upgrade serial value.Devan Goodwin2016-09-291-1/+3
| | |
| * | Split upgrade for control plane/nodes.Devan Goodwin2016-09-2910-103/+89
| | |
| * | Verify masters are upgraded before proceeding with node only upgrade.Devan Goodwin2016-09-281-3/+0
| | |
| * | Attempt to tease apart pre upgrade for masters/nodes.Devan Goodwin2016-09-288-305/+251
| | |
| * | Split upgrade entry points into control plane/node.Devan Goodwin2016-09-282-1/+49
| | |
| * | Reunite upgrade reconciliation gating with the play it gates on.Devan Goodwin2016-09-281-17/+18
| | |
| * | Drop atomic-enterprise as a valid deployment type in upgrade.Devan Goodwin2016-09-281-2/+2
| | |
| * | Stop guarding against pacemaker in upgrade, no longer necessary.Devan Goodwin2016-09-281-8/+0
| | |
| * | Support openshift_upgrade_dry_run=true for pre-upgrade checks only.Devan Goodwin2016-09-281-0/+7
| | |
* | | Merge pull request #2475 from smunilla/registry_all_the_timeScott Dodson2016-09-302-104/+3
|\ \ \ | | | | | | | | Install Registry by Default
| * | | Further secure registry improvementsAndrew Butcher2016-09-292-130/+2
| | | | | | | | | | | | | | | | | | | | | | | | - Default to hosted_registry_insecure=False - Add openshift ca to system ca-trust. - Update ca trust in openshift_node_certificates rather than docker_ca_trust
| * | | Delgate handlers to first masterSamuel Munilla2016-09-291-0/+4
| | | |
| * | | Secure registry improvements.Andrew Butcher2016-09-292-102/+125
| | | | | | | | | | | | | | | | | | | | | | | | * Convert oc template calls to jsonpath. * Wait for deployments to finish before restarting docker. * Re-organize node ca configuration.
| * | | Install Registry by DefaultSamuel Munilla2016-09-291-9/+9
| | | | | | | | | | | | | | | | | | | | | | | | | | | | Instead of restricting cockpit-ui to Atomic Registry installations, install it by default everywhere. Fixes Bug 1371459
* | | | Merge pull request #2532 from abutcher/logging-deploy-boolScott Dodson2016-09-291-2/+2
|\ \ \ \ | |/ / / |/| | | Default openshift_hosted_{logging,metrics}_deploy to false.
| * | | Default openshift_hosted_{logging,metrics}_deploy to false.Andrew Butcher2016-09-291-2/+2
| | | |
* | | | Merge pull request #2529 from abutcher/play-namesScott Dodson2016-09-295-8/+9
|\ \ \ \ | |/ / / |/| | | Update play names for consistency.
| * | | Update play names for consistency.Andrew Butcher2016-09-295-8/+9
| | | |
* | | | Merge pull request #2404 from sdodson/loggingScott Dodson2016-09-291-1/+40
|\ \ \ \ | |/ / / |/| | | Logging fixes
| * | | Configure ops cluster storage to match normal cluster storageScott Dodson2016-09-291-1/+4
| | | |
| * | | Set default_subdomain properly for loggingScott Dodson2016-09-261-2/+2
| | | |
| * | | Add storage for loggingScott Dodson2016-09-261-0/+4
| | | |
| * | | Add logging to install playbooksScott Dodson2016-09-261-1/+33
| | |/ | |/|
* | | Suppress more warnings.Andrew Butcher2016-09-282-0/+8
| |/ |/|